kernel CVE-2023-2156
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.14.2
Patched versions
1.14.2
kernel-5.15
(bottlerocket)
< 1.14.2
1.14.2
A flaw was found in the Linux kernel’s networking subsystem within the RPL protocol's handling. This issue results from the improper handling of user-supplied data, which can lead to an assertion failure. This flaw allows an unauthenticated, remote attacker to create a denial of service condition on the system.